Employee reactions to security changes

Assignment Help Basic Computer Science
Reference no: EM131368419

Application: Employee Reactions to Security Changes

Employees are often the greatest security threat to an organization. It may be a disgruntled employee who felt he or she was poorly treated or a model employee who simply didn't follow company policy for keeping his or her computer secure.

The case study about coordination between the IT and HR Departments from your textbook in this unit's Learning Resources covers this type of security threat. This case involves a mid-size company with a sophisticated information infrastructure. The director of IT is new, and the head of human resources has been with the organization for some time. As the new IT director begins implementing additional security measures, a security breach occurs.

For this Assignment, you will analyze the above case study from this unit's reading and consider employee behavior, preparation for and prevention of security breaches, and appropriate communication with employees after attacks.

Submit a 2- to 4-page analysis in APA format of the case study. In your analysis, answer the following:

  • What about employee awareness and/or mindset may have led to the breach?
  • What steps might management have taken to prepare for or prevent this breach?
  • Based on your understanding about the attacker and the work environment, how might the company ward off future attacks?
  • What information might the company communicate to its employees about the attack?

Readings

  • Whitman, M., & Mattord, H. (2012).High-assurance computing: Topics & case studies. Boston, MA: Course Technology/Cengage Learning.
    • Chapter 1, "Introduction to Management of Information Security" (pp. 1-36)Everyone has a role to play when it comes to security. In this chapter you will assess the importance of a manager's function in securing a business's assets.  You will explore the CNSS security model and the differences between security management and general management.
    • Case 1, "Coordination Between an Information Technology Department and a Human Resources Department" (pp. 375-382)This case explores a security breach allegedly initiated by an employee at the Cenartech Security engineering company.  You will consider the evidence provided and begin your analysis on what could have been done to educate the staff and potentially prevent the attack
  • Ayyagari, R., & Tyks, J. (2012). Disaster at a university: A case study in information security.Journal of Information Technology Education: Innovations in Practice, 11. Retrieved fromhttps://www.jite.org/documents/Vol11/JITEv11IIPp085-096Ayyagari1035.pdf
  • Committee on National Security Systems (CNSS). (n.d.). Retrieved November 25, 2012, fromhttps://www.cnss.gov/The official website of the Committee on National Security Systems.  The CNSS is responsible for providing a forum for discussing policy issues and for setting national information assurance policies and directives.
  • National Security Agency: Central Security Service. (2009). TEMPEST certification program. Retrieved fromhttps://www.nsa.gov/applications/ia/tempest/index.cfmThe official website for the TEMPEST Certification Program. This website outlines the details of the program.
  • NSTISS. (1994).National training standard for information systems security (INFOSEC) professionals. Retrieved fromhttps://www.cnss.gov/Assets/pdf/nstissi_4011.pdfThis document describes the key terms for Information Systems Security (INFOSEC) for professionals in the disciplines of telecommunication and automated information systems (AIS) security.
  • Ponemon Institute. (2012, March 7). Employee behavior blamed for most security breaches. Retrieved fromhttps://www.techjournal.org/2012/03/employee-behavior-blamed-for-most-security-breaches/

Reference no: EM131368419

Questions Cloud

Prepare a sales budget ensure accuracy of data : ACC 202 Final Project. Operating Budget - Create an operating budget using the Final Project Part I Student Worksheet. Prepare a sales budget. Ensure accuracy of data. Prepare a production budget. Ensure the accuracy of your data
Sampling frequency and the number of bits : Given a real-time digital signal processing system, how do the sampling frequency and the number of bits used in performing the analog-to-digital conversion of an analog input signal impact the design and performance of the system? What features o..
Display the annual income statement : To retrieve the data for your company, enter the ticker symbol. Now choose Financials and then Income Statement from the menu. Display the annual income statement and copy the sales and net income data. Now enter the data into your template.
What seems to be the key assumption here : How does this make you feel? What bothers (or excites) you the most about this?What do you mean by that? Could you explain what you just said a bit more? What don't you agree with X?What seems to be the key assumption here? What could be assumed inst..
Employee reactions to security changes : Employees are often the greatest security threat to an organization. It may be a disgruntled employee who felt he or she was poorly treated or a model employee who simply didn't follow company policy for keeping his or her computer secure.
Describe two challenges that a project manager might face : Explain how strategic portfolio management relates to project management. Describe two challenges that a project manager might face in a non-project-based organization.
Create your own inductive argument : Create your own inductive argument. It needs to have more than one premise, and must have a conclusion that follows from those premises.
Understanding about the attacker and the work environment : What about employee awareness and/or mindset may have led to the breach? What steps might management have taken to prepare for or prevent this breach? Based on your understanding about the attacker and the work environment, how might the company ward..
What is the purpose of opt-in email : What methods does Dell use to leverage Internet marketing? What is the purpose of opt-in email? What are some ways Amazon takes advantage of Internet advertising?

Reviews

Write a Review

 

Basic Computer Science Questions & Answers

  Private industry surveillance of private citizens

Since there are few legal limitations on private industry surveillance of private citizens, could the government contract surveillance to private companies? Would this be legal? Would it be desirable?

  Describe why both events were precursors of the disaster

Before the disaster, the responsibility for both the design and the construction were given to one firm, and bridge components were increasingly misaligned (Wells, 2010). Describe why both events were precursors of the disaster.

  Wireless and mobile technologies

In this very competitive climate, many companies are seeking ways to connect with customers in ways that add value. Mobile and wireless computing have become key focal points to attract and retain customers.

  Explaining drain corporate budgets and ultimately profits

First of all it eliminates requirement of hardware, downloads and implementations which drain corporate budgets and ultimately profits. It takes companies only a third of the expenses that they will incurred to have their companies running.

  Wireless networks of various types

More and more traffic is being moved to wireless networks of various types. Write a 500-word paper that discusses the issues that occur when voice traffic is sent over a typical wireless local area network, such as what the advantages are, the pro..

  Write a lex program that recognizes the keywords select

In SQL, keywords and identifiers are case-insensitive. Write a Lex program that recognizes the keywords SELECT, FROM, and WHERE (in any combination of capital and lower-case letters) , and token ID, which for the purposes of this exercise you may ..

  Five major responsibilities of database administration

In general, what are data administration's responsibilities to the professional and managerial employees of the company? Concentrate on training, publicity, and liaison tasks.

  Browsers render color user enter a color name true or false

Browsers that render the color input type as a text field require the user to enter a color name. True or false

  What must be done to add a new relationship

Using the results of your answer to Review Question 8.46, explain what must be done to convert this relationship to 1:1. Use the keys and foreign keys from your answer to Review Question 8.46.

  Estimate the maximum aggregate i/o transfer rate

A 32-bit computer has two selector channels and one multiplexor channel. Each selector channels supports two magnetic disk and two magnetic tape units. The multiplexor channel has two line printers, two card readers, and 10 VDT terminals connected..

  Eliminate the problem of unutilized empty slots

Write an algorithm that implements the shift right operation as used in linear queues to eliminate the problem of unutilized empty slots created after deletions.

  How would this affect root name server traffic in general

How would this affect root name server traffic in general? How would this affect such traffic for the specific case of resolving a name like cisco into a Web server address?

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd